Quantcast
Channel: HAProxy community - Latest topics
Viewing all articles
Browse latest Browse all 4832

Not work route by ssl_fc_sni

$
0
0

Hello!
I have marzban installed on my vpc. Try to route traffic by haproxy using ssl_fc_sni. There is my config snippet

frontend https_in
    bind *:443 ssl crt /var/lib/marzban/certs/ecc_zimanon.me.cer crt /var/lib/marzban/certs/rsa_zimanon.me.cer
    tcp-request inspect-delay 5s
    tcp-request content accept if { req_ssl_hello_type 1 }

    acl is_mrzbadm hdr(ssl_fc_sni) -i mrzbadm.zimanon.me
    use_backend mrzb_admin if is_mrzbadm

backend mrzb_admin
    mode tcp
    server admin_srv 127.0.0.1:8000

Its not working, i have a "This page isn’t working, mrzbadm.zimanon.me didn’t send any data.

and in log file i have
2024-11-05T19:21:22.400170+00:00 marz-de1 haproxy[154782]: 195.133.47.73:59570 [05/Nov/2024:19:21:22.354] https_in~ https_in/ -1 0 SC-- 2/2/0/0/0 SNI:mrzbadm.zimanon.me

but if i try to route all tfaffic over default backend as mrzbadm.zimanon.me - all works fine. Can anybody help me out

2 posts - 2 participants

Read full topic


Viewing all articles
Browse latest Browse all 4832

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>